CVE List

Id CVE No. Status Description Phase Votes Comments Actions
40198  CVE-2009-2763  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20090813)  None (candidate not yet proposed)    View
40454  CVE-2009-3019  Candidate  Microsoft Internet Explorer 6 on Windows XP SP2 and SP3, and Internet Explorer 7 on Vista, allows remote attackers to cause a denial of service (application crash) via JavaScript code that calls createElement to create an instance of the LI element, and then calls setAttribute to set the value attribute.  Assigned (20090831)  None (candidate not yet proposed)    View
40710  CVE-2009-3275  Candidate  Blocks/Common/Src/Configuration/Manageability/Adm/AdmContentBuilder.cs in Microsoft patterns & practices Enterprise Library (aka EntLib) allows context-dependent attackers to cause a denial of service (CPU consumption) via an input string composed of many (backslash) characters followed by a " (double quote), related to a certain regular expression, aka a "ReDoS" vulnerability.  Assigned (20090921)  None (candidate not yet proposed)    View
40966  CVE-2009-3531  Candidate  SQL injection vulnerability in vnews.php in Universe CMS 1.0.6 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20091002)  None (candidate not yet proposed)    View
41222  CVE-2009-3787  Candidate  files.php in Vivvo CMS 4.1.5.1 allows remote attackers to conduct directory traversal attacks and read arbitrary files via the file parameter with "logs/" in between two . (dot) characters, which is filtered into a "../" sequence.  Assigned (20091026)  None (candidate not yet proposed)    View

Page 541 of 20943, showing 5 records out of 104715 total, starting on record 2701, ending on 2705

Actions